IDAM PAM Engineer

IDAM PAM Engineer

Full-Time 60000 - 80000 ÂŁ / year (est.) No home office possible
AVEVA

At a Glance

  • Tasks: Lead the design and automation of privileged access management solutions.
  • Company: AVEVA, a trusted software provider for leading industrial companies.
  • Benefits: Flexible benefits, 28 days annual leave, private medical insurance, and education assistance.
  • Other info: Inclusive culture with opportunities for continuous learning and career growth.
  • Why this job: Join a dynamic team and make a real impact in cybersecurity.
  • Qualifications: Hands-on experience in PAM and strong skills in SailPoint and CyberArk.

The predicted salary is between 60000 - 80000 ÂŁ per year.

AVEVA is creating software trusted by over 90% of leading industrial companies.

AVEVA is seeking Privileged Access Management (PAM) Engineers to lead the delivery of highly automated, enterprise‑grade privileged access controls as part of our IDAM function. This is a senior, hands‑on engineering role with significant responsibility and influence. You will design, build, and operate PAM capabilities with automation as a core principle, integrating SailPoint as the enterprise IGA platform and supporting the current and future adoption of CyberArk (or equivalent). You will act as a senior technical authority, defining standards, patterns, and automation approaches while working closely with Security Architecture, Infrastructure, and Audit teams.

Key responsibilities

  • Lead the automation‑first design and engineering of PAM solutions
  • Play a senior role in CyberArk (or similar) implementation and expansion
  • Engineer fully automated onboarding for privileged user accounts
  • Engineer fully automated onboarding for service and application accounts
  • Engineer fully automated onboarding for credentials, secrets, and keys
  • Integrate PAM with SailPoint for automated governance, lifecycle, and access reviews
  • Define PAM standards, onboarding patterns, and automation frameworks
  • Automate privileged access requests, approvals, and provisioning via ServiceNow
  • Build automated PAM and SailPoint reporting for audits and compliance
  • Reduce manual PAM operations through scripting and orchestration
  • Secure privileged access across Active Directory environments
  • Secure privileged access across Windows and Linux platforms
  • Secure privileged access across Azure and cloud services
  • Secure privileged access across applications and DevOps pipelines
  • Act as senior escalation point for PAM‑related incidents
  • Partner with Security Architecture and Audit on control design and evidence automation
  • Produce high‑quality architecture diagrams, runbooks, and engineering documentation
  • Apply AI‑assisted tooling to enhance troubleshooting and operational insight

Essential requirements

  • Significant, hands‑on experience in Privileged Access Management
  • Hands‑on SailPoint experience is mandatory
  • Strong experience with CyberArk (PAS, PSM, EPM) or equivalent tools
  • Proven ability to engineer and automate PAM at scale
  • Strong understanding of privileged access risks and threat vectors
  • Advanced experience with Active Directory and hybrid identity environments
  • Strong automation and scripting skills (PowerShell, Python, APIs)
  • Experience supporting audits using automated evidence and reporting
  • Ability to operate as a senior engineer, providing technical leadership

Desired skills

  • Experience using ServiceNow and/or Jira to automate privileged access workflows
  • Broader knowledge of IAM, IGA, Zero Trust, or identity security domains
  • Experience working with DevOps teams, including securing pipelines and secrets
  • Bachelor’s degree in Computer Science, Engineering, Mathematics, or related discipline; or equivalent experience
  • Relevant certifications (e.g. CyberArk, SailPoint, Microsoft Security, Cloud Security)
  • Strong communication and stakeholder management skills
  • Customer‑focused mindset, balancing security with business usability
  • Demonstrated growth mindset, passionate about continuous learning
  • Experience mentoring or guiding other engineers

UK Benefits include: Flexible benefits fund, emergency leave days, adoption leave, 28 days annual leave (plus bank holidays), pension, life cover, private medical insurance, parental leave, education assistance program.

AVEVA is an Equal Opportunity Employer. We are committed to being an exemplary employer with an inclusive culture, developing a workplace environment where all our employees are treated with dignity and respect. We value diversity and the expertise that people from different backgrounds bring to our business. AVEVA provides reasonable accommodation to applicants with disabilities where appropriate. If you need reasonable accommodation for any part of the application and hiring process, please notify your recruiter. Determinations on requests for reasonable accommodation will be made on a case‑by‑case basis. AVEVA requires all successful applicants to undergo and pass a drug screening and comprehensive background check before they start employment. Background checks will be conducted in accordance with local laws and may, subject to those laws, include proof of educational attainment, employment history verification, proof of work authorization, criminal records, identity verification, credit check. Certain positions dealing with sensitive and/or third‑party personal data may involve additional background check criteria.

IDAM PAM Engineer employer: AVEVA

AVEVA is an exceptional employer, offering a dynamic work environment in the heart of the UK, with a strong focus on innovation and automation in Privileged Access Management. Employees benefit from a comprehensive package that includes flexible benefits, generous leave policies, and opportunities for professional growth, all while being part of a diverse and inclusive culture that values every individual's contribution. With a commitment to continuous learning and development, AVEVA empowers its engineers to take on significant responsibilities and influence within the organisation.
AVEVA

Contact Detail:

AVEVA Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land IDAM PAM Engineer

✨Tip Number 1

Network like a pro! Reach out to folks in the industry, attend meetups, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Show off your skills! Create a portfolio or GitHub repository showcasing your PAM projects and automation scripts. This gives potential employers a taste of what you can do and sets you apart from the crowd.

✨Tip Number 3

Prepare for interviews by brushing up on common PAM scenarios and technical questions. Practice explaining your thought process and solutions clearly, as communication is key in these roles.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, we love seeing candidates who are proactive about their job search!

We think you need these skills to ace IDAM PAM Engineer

Privileged Access Management (PAM)
SailPoint
CyberArk (PAS, PSM, EPM)
Automation and Scripting (PowerShell, Python, APIs)
Active Directory
Hybrid Identity Environments
ServiceNow
Jira
Identity and Access Management (IAM)
Identity Governance and Administration (IGA)
Zero Trust Security
Technical Leadership
Communication Skills
Stakeholder Management
Continuous Learning

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the IDAM PAM Engineer role. Highlight your hands-on experience with Privileged Access Management and any relevant tools like CyberArk or SailPoint. We want to see how your skills match what we're looking for!

Show Off Your Automation Skills: Since automation is key in this role, don’t forget to showcase your scripting skills, especially in PowerShell or Python. Share specific examples of how you've automated processes in previous roles – we love a good success story!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about PAM and how you can contribute to our team. Keep it concise but impactful – we want to feel your enthusiasm for the role!

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, it shows us you’re serious about joining our team at AVEVA!

How to prepare for a job interview at AVEVA

✨Know Your PAM Tools Inside Out

Make sure you’re well-versed in the tools mentioned in the job description, especially CyberArk and SailPoint. Brush up on your hands-on experience and be ready to discuss specific projects where you've implemented or automated PAM solutions.

✨Showcase Your Automation Skills

Since this role emphasises automation, prepare examples of how you've used scripting languages like PowerShell or Python to automate processes. Be ready to explain your thought process and the impact of your automation on previous projects.

✨Understand Privileged Access Risks

Familiarise yourself with the common risks and threat vectors associated with privileged access management. Be prepared to discuss how you’ve mitigated these risks in past roles and how you would approach them in this position.

✨Communicate Effectively

This role requires strong communication skills, so practice articulating your thoughts clearly. Think about how you can convey complex technical concepts to non-technical stakeholders, as this will be crucial when collaborating with Security Architecture and Audit teams.

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>